Positive forward-thinking IT
// Last updated: 03 July 2026
This policy explains how PositiveITSystems.co.uk Ltd (“we”, “us”, “our”), the operator of www.positiveitsystems.co.uk(the “Site”), collects, uses and protects your personal data. It is written to comply with the UK General Data Protection Regulation (UK GDPR) and Data Protection Act 2018, and the EU General Data Protection Regulation (EU GDPR) (Regulation (EU) 2016/679), for visitors based in the United Kingdom and the European Economic Area (EEA).
If you have any questions about this policy or how we handle your data, please contact us using the details in the “How to Contact Us” section below.
Data controller: PositiveITsystems.co.uk Ltd
Address:c/o Bedford Business Centre, 61 -63 St Peter’s Street, Bedford MK40 2PR
Email: privacy@positiveitsystems.co.uk
If you are based in the EEA and we do not have an establishment there, our EU representative (if required under Article 27 GDPR) is: Hanish Naran
We have an appointed Data Protection Officer, Hanish Naran.
As a website, we collect the following categories of personal data:
We do not knowingly collect any special category data (such as health, religious belief, or political opinion data) through the Site.
Under UK GDPR and EU GDPR, we must have a valid legal basis to process your personal data. We rely on the following:
We do not sell your personal data to third parties.
The Site uses cookies and similar technologies to distinguish you from other users, remember your preferences, and understand how the Site is used. On your first visit, we ask for your consent to non-essential cookies via a cookie banner, in line with the UK Privacy and Electronic Communications Regulations (PECR) and the EU ePrivacy Directive.
We use the following categories of cookies:
You can manage or withdraw your cookie consent at any time through your browser settings. Disabling cookies may affect the functionality of the Site.
We use the following third-party service provider, which processes personal data on our behalf as a data processor:
We may also disclose your data where required by law, to protect our legal rights, or in connection with a business transfer (such as a merger or sale of assets), in which case we will notify you where required to do so.
We do not share your personal data with third parties for their own independent marketing purposes without your consent.
Some of our third-party service providers, such as Google, may process data outside the UK and EEA, including in the United States. Where this happens, we ensure appropriate safeguards are in place, such as:
You can request more information about these safeguards by contacting us.
Under the UK GDPR and EU GDPR, you have the following rights in relation to your personal data:
Right | What it means |
Be informed | To know how your data is collected and used (this policy). |
Access | To request a copy of the personal data we hold about you. |
Rectification | To ask us to correct inaccurate or incomplete data. |
Erasure | To ask us to delete your data (‘right to be forgotten’), where applicable. |
Restrict processing | To ask us to limit how we use your data in certain circumstances. |
Data portability | To receive your data in a structured, machine-readable format. |
Object | To object to processing based on legitimate interests or for direct marketing. |
Withdraw consent | To withdraw consent at any time where processing is based on consent. |
Automated decision-making | To not be subject to solely automated decisions with legal or similarly significant effects. |
To exercise any of these rights, please contact us using the details in Section 1. We will respond within one month, as required by law. We may need to verify your identity before actioning a request.
If you are unhappy with how we have handled your personal data, please contact us first so we can try to resolve the issue. You also have the right to lodge a complaint with a supervisory authority:
The Site is not directed at children, and we do not knowingly collect personal data from anyone under the age of 16 (or the applicable age of consent in your country). If you believe a child has provided us with personal data, please contact us so we can delete it.
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, loss or destruction.This includes the use of secure hosting environments, encryption of passwords,TLS/SSL encryption for data in transit and strict internal access controls. However, please note no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.
We may update this policy from time to time to reflect changes in our practices or legal requirements. The “Last updated” date at the top of this policy shows when it was last revised. We encourage you to review this policy periodically.
If you have any questions about this Privacy Policy or wish to exercise your data protection rights, please contact us:
Positive, forward-thinking IT support, security and cloud for small and medium businesses — based in Bedford and covering Bedfordshire, Hertfordshire, Cambridgeshire, Buckinghamshire, London and Germany.
© 2026 Positive IT Systems Ltd · Bedford, UK · positiveitsystems.co.uk · Privacy Policy